logo

Critical flaw in NVIDIA Container Toolkit allows full host takeover

ID: 1bbe01a2-d7ce-5ecb-ad40-aee9fc35befc

STIX ID: report--1bbe01a2-d7ce-5ecb-ad40-aee9fc35befc

Feed Name: Bleeping Computer

Threat Score
78/100

Date Published: 2024-09-29

Date Updated: 2026-04-20

Author: Bill Toulas

...
...

**Critical NVIDIA Container Toolkit vulnerability (CVE-2024-0132)** — A container-escape flaw in NVIDIA Container Toolkit and GPU Operator (affecting Toolkit ≤1.16.1 and GPU Operator ≤24.6.1) can allow a malicious container to mount writable host resources (e.g., Unix sockets) and achieve full host takeover; vendors released patches (1.16.2 / 24.6.2) and researchers have withheld technical exploit details to allow mitigation.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.